|
Advanced Networking Management Lab (ANML) Distributed Denial of Service Attacks(DDoS) Resources |
|
DDoS Case Online Attacks Against GRC.COM DoS Attack on a Check Point Firewall Technical Information SANS' DDoS Roadmap CERT's DoS FAQ Dave Dittrichs' Homepage DDoS Attacks/tools CIAC Astanetworks |
DDoS History in Brief"Traditional" DoS attacks, however, typically generate a large amount of traffic from a given host or subnet and it is possible for a site to detect such an attack in progress and defend themselves. Distributed DoS attacks are a much more nefarious extension of DoS attacks because they are designed as a coordinated attack from many sources simultaneously against one or more targets. Denial-of-service attacks under a number of guises have been around for decades. Distributed DoS attacks are much newer, first being seen in late June and early July of 1999. The first well-documented DDoS attack appears to have occurred in August 1999, when a DDoS tool called Trinoo (described below) was deployed in at least 227 systems, of which at least 114 were on Internet2, to flood a single University of Minnesota computer; this system was knocked off the air for more than two days. Some statistics are available for these attacks' experience. Keynote reports the following degradation of performance:
| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
Page developed by yinjin@indiana.edu 107
S. Indiana Ave., Bloomington,
IN 47405-7000 (812) 855-4810
|